Medicabil Logo

Privacy Policy

Medicabil Health Services Inc. ("Company", "we", "us") is committed to protecting the personal data of our users. This Privacy Policy explains how we collect, use, and safeguard your personal information in connection with our mobile application and related services.

1. Data Controller

Medicabil Health Services Inc.

Address: Mudanya Yolu Küre Sok, Fethiye Mahallesi, 16140 Nilüfer / Bursa, Turkey

Email: [email protected]

2. What Data We Collect

Depending on your use of our services, we may collect the following categories of personal data:

  • Identity Information: name, surname, national ID number, date of birth, gender, passport/ID copies, tax number
  • Contact Information: phone number, address, email address, IP address
  • Location Data: GPS location and travel data where relevant to service delivery
  • Health and Medical Data (special category): blood type, medical diagnosis, treatment records, and other health-related data
  • Financial Information: bank account number, IBAN, billing details
  • Visual/Audio Data: photographs, camera recordings, voice recordings
  • Security Data: physical entry/exit logs, CCTV recordings
  • Request/Complaint Data: any requests or complaints you submit to us

3. How and Why We Use Your Data

We process your personal data for the following purposes:

  • Provision and management of healthcare services
  • Patient registration and appointment scheduling
  • Medical diagnosis, treatment, and care services
  • Legal compliance and reporting obligations
  • Security of our facilities and digital systems
  • Management of complaints and service requests
  • Investor and corporate communications
  • Auditing and regulatory compliance

Health and sexual life data are processed exclusively by persons or institutions bound by confidentiality obligations, solely for purposes of protecting public health, preventive medicine, medical diagnosis, treatment and care services, and planning and management of health services and financing.

4. Legal Basis for Processing

We process your personal data on one or more of the following legal grounds:

  • Your explicit consent
  • Necessity for the performance of a contract to which you are a party
  • Compliance with a legal obligation
  • Necessity to protect vital interests of you or another person
  • Necessity for the establishment, exercise, or defense of legal claims
  • Legitimate interests of our Company, provided they do not override your fundamental rights

5. Data Sharing and Third-Party Transfers

We may share your personal data with the following categories of recipients, for the purposes stated above:

  • Group companies and affiliates
  • Business partners and suppliers
  • Legally authorized public authorities and institutions
  • Legally authorized private law entities

All data transfers are carried out in accordance with applicable law and subject to appropriate security measures. International transfers are made only to countries offering adequate protection or where adequate safeguards have been committed to in writing.

6. Data Retention

We retain personal data only for as long as required by applicable law or necessary for the purposes for which it was collected. Once the retention period expires or the processing purpose ceases, data is securely deleted, destroyed, or anonymized.

7. Data Security

We implement appropriate technical and administrative measures to protect your personal data against unauthorized access, disclosure, alteration, or destruction. These include:

  • Regular security audits and vulnerability scans
  • Access control and authorization systems
  • Firewalls, antivirus systems, and encryption
  • Confidentiality agreements with personnel
  • Periodic staff training on data protection

8. Your Rights

Under applicable law, you have the right to:

  • Learn whether your personal data is being processed
  • Request information about the processing of your data
  • Learn the purpose of processing and whether it is used accordingly
  • Know the third parties to whom your data has been transferred
  • Request correction of incomplete or inaccurate data
  • Request deletion or destruction of your data where the purpose has ceased
  • Object to decisions made solely by automated processing
  • Claim compensation for damages arising from unlawful processing

To exercise your rights, please complete and submit the Data Subject Request Form available at:

Please click here in order to view the relevant form.

You may submit your request by post (with wet signature) to our address above, or by email to [email protected].

9. Cookies and Online Tracking

When you visit our website, we may collect log records and usage data in accordance with applicable internet legislation (Law No. 5651). These records are only accessed when required by authorized authorities or for internal audit purposes.

10. Children's Data

Our services may be used in connection with minors as part of healthcare delivery. Such data is processed only with the explicit consent of a parent or legal guardian, or as required by law.

11. Changes to this Policy

We may update this Privacy Policy from time to time. We will notify users of material changes through the application or our website. Continued use of our services constitutes acceptance of the updated policy.

12. Contact

For questions or requests regarding this Privacy Policy, please contact:

Email: [email protected]

Address: Mudanya Yolu Küre Sok, Fethiye Mahallesi, 16140 Nilüfer / Bursa, Turkey